CN103780605B - Fast encryption and decryption method and gateway - Google Patents

Fast encryption and decryption method and gateway Download PDF

Info

Publication number
CN103780605B
CN103780605B CN201410007586.4A CN201410007586A CN103780605B CN 103780605 B CN103780605 B CN 103780605B CN 201410007586 A CN201410007586 A CN 201410007586A CN 103780605 B CN103780605 B CN 103780605B
Authority
CN
China
Prior art keywords
information
message
routing iinformation
encryption
decryption
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Active
Application number
CN201410007586.4A
Other languages
Chinese (zh)
Other versions
CN103780605A (en
Inventor
李剑荣
张海泉
余筱
谢小梅
Current Assignee (The listed assignees may be inaccurate. Google has not performed a legal analysis and makes no representation or warranty as to the accuracy of the list.)
Comba Network Systems Co Ltd
Original Assignee
Comba Telecom Systems China Ltd
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by Comba Telecom Systems China Ltd filed Critical Comba Telecom Systems China Ltd
Priority to CN201410007586.4A priority Critical patent/CN103780605B/en
Publication of CN103780605A publication Critical patent/CN103780605A/en
Application granted granted Critical
Publication of CN103780605B publication Critical patent/CN103780605B/en
Active legal-status Critical Current
Anticipated expiration legal-status Critical

Links

Landscapes

  • Data Exchanges In Wide-Area Networks (AREA)

Abstract

The invention discloses a fast encryption and decryption method and a gateway, and relates to the technical field of communication, so as to improve the speed of message encryption and decryption of the gateway. The method comprises the steps that when a message is received, whether safety related SA information and routing information, which are in a mapping relationship with identification group information, are saved is searched according to the safety policy index identification group information of the message; if so, fast encryption and decryption processes are carried out; encryption and decryption are carried out on the message directly according to the searched SA information, and sending is carried out according to the routing information; if not, standard encryption and decryption processes are carried out.

Description

A kind of quick encipher-decipher method and gateway
Technical field
The present invention relates to communication technical field, more particularly to a kind of to accelerate encipher-decipher method and gateway.
Background technology
As attention of the people to the security of information transfer on public network is increasingly lifted, the requirement day to Security Data Transmission Benefit is improved, and various safe practices are obtained for fast development.In a communications system, in order to ensure the security of business, base station leads to Cross IPSec passages and set up secure connection with gateway.Tradition application in, more be consider transmission security, but with 3G, The fast development of 4G networks, the processing speed that security gateway is improved on the premise of security is ensured is allowed to not become whole network The bottleneck of development is more and more important.When encryption channel is set up with security gateway when base station and being communicated, message needs substep Suddenly, the security strategy for determining Message processing result is searched respectively(SP)Security association required for information, encryption and decryption(SA) Routing iinformation needed for information and forwarding, the encryption and decryption process CIMS of this traditional mode is numerous and diverse, easily affects system data Transfer rate.
In the practical application situation of traditional encryption and decryption process flow process, often occur a large amount of messages need through The situation of gateway encryption and decryption, the place of such encryption and decryption data comprehends and brings larger pressure to gateway, causes gateway processes ability Demand can not be met, packet loss phenomenon easily occur, communication occurs the problem of interruption, voice quality difference or data outage.
The content of the invention
A kind of quick encipher-decipher method and gateway are embodiments provided, to improve encryption and decryption of the gateway to message Speed.
The invention provides a kind of quick encipher-decipher method, the method includes:
When message is received, searched whether to be stored with and the mark group information according to the mark group information of the message Security association SA information with mapping relations and routing iinformation;
If it is, performing quick encryption process, directly the message is carried out according to the SA information for finding Encryption and decryption, and be transmitted according to the routing iinformation;
If it is not, then performing standard encryption and decryption process.
In above-mentioned technical proposal of the present invention, there is provided a kind of method of quick encryption and decryption, by SA information and routing iinformation Association storage, that is, allow mark group information directly to set up mapping relations with SA information and routing iinformation, so message is being carried out to add During close or decryption, it is only necessary to search the SA information and routing iinformation needed for once can finding according to mark group information, hence it is evident that accelerate The processing speed of message, improves treatment effeciency.
On the basis of above-mentioned technical proposal of the present invention, it is preferable that complete in the Standard Encryption process or decrypting process Afterwards, the method also includes:
The SA information for generating and the routing iinformation are set up into incidence relation, and sets up right with the mark group information The mapping relations answered.
In above-mentioned technical proposal of the present invention, there is provided a kind of mapping relations for setting up mark group information and incidence relation SA Method, due to the message processed through standard encryption and decryption method, can obtain identifying group information and SP information, SA information and The corresponding relation of routing iinformation, it is possible to stored SA information and routing iinformation according to these corresponding relations, and with mark group Information sets up mapping relations, so next time when the message with the mark group information arrives, can be corresponding with extracting directly SA information and routing iinformation are directly processed, without carrying out standard encryption and decryption flow process again.
On the basis of above-mentioned technical proposal of the present invention, it is preferable that the method also includes the incidence relation to setting up The update cycle is provided with, all described incidence relation that a cycle of deleting when each cycle starts sets up.
Above-mentioned technical proposal of the present invention in order to ensure set up incidence relation and mapping relations correctness, so setting One update cycle, alternatively referred to as ageing time, so ensure that each incidence relation set up only uses a period of time, it is to avoid Because the variation of SA information or routing iinformation causes message encryption and decryption flow process mistake caused by the former incidence relation mistake set up, protect Upgrading in time for incidence relation is demonstrate,proved.
The invention provides a kind of quick encryption and decryption gateway, the gateway includes:
Receiving port, for receiving message;
Processor, for whether being stored with and the mark group to memory look-up according to the mark group information of the message Information has the security association SA information and routing iinformation of mapping relations;
If it is, performing quick encryption process, directly the message is carried out according to the SA information for finding Encryption and decryption;
If it is not, then performing standard encryption and decryption process;
Memory, for storage mark group information, security association SA information and routing iinformation;
Sending port, the message for encryption and decryption to be completed is transmitted according to the routing iinformation.
In the above embodiment of the present invention, there is provided a kind of gateway that can realize quick encryption and decryption, compared to traditional net Close, store multiple SA information and routing iinformation inside the processor in the embodiment of the present invention in advance, and from different mark groups Information establishes mapping relations, so when message is received, can judge whether to hold according to the mark group information of message The quick encryption process of row, qualified message is rapidly completed encryption and decryption, to ineligible standard encryption and decryption is performed again Process.
The embodiment of the present invention, is closed by storing SA information and routing iinformation in advance with the mapping of the mark group information of message System, so as to when message is received, judge whether the message can carry out quick encryption and decryption stream according to the mark group information of message Journey.
Description of the drawings
Fig. 1 is a kind of method flow schematic diagram of quick encipher-decipher method provided in an embodiment of the present invention;
Fig. 2 is a kind of apparatus structure schematic diagram of quick encryption and decryption gateway provided in an embodiment of the present invention;
Fig. 3 is a kind of specific embodiment schematic flow sheet of quick encipher-decipher method provided in an embodiment of the present invention.
Specific embodiment
Traditional security gateway embodiment, will carry out first processing just when encryption or decryption processing to message Related information can be obtained, each message will search SP information to enter corresponding SA information when encryption and decryption is processed Row verification, will search each time routing table to send when giving out a contract for a project, and flow process is numerous and diverse and substantial amounts of lookup consumes a large amount of Time.When a large number of users carries out online voice communication or has substantial amounts of data service, this can be very big to the load of gateway, It is easier to overwork occur, packet loss, speed of download are slow to cause speech data to occur, and Consumer's Experience is poor.
A kind of quick encipher-decipher method and gateway are embodiments provided, to improve encryption and decryption of the gateway to message Speed.The present invention on the whole, mainly on the basis of conventional gateway encryption and decryption handling process has been fully understood by, realizes one Kind the security performance of security gateway is ensured, while improving support that gateway processed multi-standard, reducing at security gateway Packet loss during reason mass data, greatly promote the disposal ability of security gateway and then improve the process performance of whole gateway Method.The actual test of Jing applicant, the improvement to security gateway processing speed of the invention clearly, can be by security gateway The speed for processing encryption and decryption data message lifts 10 times or so.
First, in order to more highlight advantage of the invention, first existing traditional encryption process is introduced:
(1), the Standard Encryption process includes:
The security strategy SP information of message according to the source IP information and purpose IP information searching of the message, specifically Ground, according to the source IP information and purpose IP information of the message outgoing packet direction is can determine, can be rapid according to message direction Find corresponding SP information;
Judged whether to need to be encrypted the message according to the SP information;
If it is, according to the corresponding SA information of the SP information searchings;
The message is encrypted according to the SA information;
Routing table is searched according to purpose IP included in the message and obtains routing iinformation;
The message that encryption is completed is sent according to the routing iinformation.
(2), the standard decrypting process includes:
The SA information of the message is searched according to the SPI of message marks and protocol information, with Standard Encryption process phase With when SA information is searched, it is also desirable to which message direction can accurately just find out SA information;
Judged whether to need to be decrypted the message according to the SA information searchings SP information;
If it is, being decrypted to the message according to the SA information;
Routing table is searched according to purpose IP included in the message and obtains routing iinformation;
The message that decryption is completed is sent according to the routing iinformation.
By above-mentioned Standard Encryption process and standard decrypting process, it can be clearly seen that in traditional encryption process, need Will respectively, the SP information of lookup successively step by step, routing iinformation and SA information, so multi-step is carried out to each message Query script is possible to that the paralysis of system can be caused when system pressure is very big, causes the loss of message.
For such case, a kind of quick encipher-decipher method is embodiments provided, as shown in figure 1, the method bag Include:
S101, when message is received, searches whether to be stored with and the mark according to the mark group information of the message Group information has the security association SA information and routing iinformation of mapping relations;
S102, if it is, quick encryption process is performed, directly according to the SA information for finding to the message Encryption and decryption is carried out, and is transmitted according to the routing iinformation;
S103, if it is not, then performing standard encryption and decryption process.
In the above embodiment of the present invention, there is provided a kind of method of quick encryption and decryption, SA information and routing iinformation are closed Federal Reserve is deposited, that is, allow mark group information directly to set up mapping relations with SA information and routing iinformation, and so message is being encrypted Or during decryption, it is only necessary to the SA information and routing iinformation needed for once can finding is searched according to mark group information, hence it is evident that accelerate The processing speed of message, improves treatment effeciency.
Above mentioned mark group information is briefly described, the information generally comprises source IP information, purpose IP information, source Port information, destination interface information, protocol information and security strategy index SPI marks.These information can be known with ancillary gateway Whether the message needs whereabouts of encryption and decryption and message etc..The meaning that mapping relations are searched according to mark group information recited above It is the SA information and routing iinformation that there are mapping relations with all information in the mark group information.
In simple terms, the inventive method is in fact in the handling process for arranging two messages, to meeting quick treatment conditions Message quickly process, to ineligible conventionally process.Quick treatment conditions whether can find with There is the SA information and routing iinformation of mapping relations in the mark group information of the message.
The mapping relations that the present invention sets up are further expalined, in conventional procedure, SP information and SA information are one One-to-one correspondence, and identify the every mark in group information and build with SP information, SA information and routing iinformation in normal process Mapping relations are found out, in practical operation, it should be noted that the SP information corresponding to the SA information of storage and routing iinformation It should be the information content for needing decryption or encrypting.
It is understood that the bar number of the SA information stored in the present invention and routing iinformation can be set as needed Put, certainly, the present invention when in use, it is possible that can not find the presence of mapping relations according to the mark group information of some messages SA information, then for these messages, it is possible to processed using above-mentioned traditional, standard encryption and decryption method, it is preferable that After the completion of the Standard Encryption process or decrypting process, the method also includes:
The SA information for generating and the routing iinformation are set up into incidence relation, and sets up right with the mark group information The mapping relations answered.
In the above embodiment of the present invention, there is provided a kind of reality for setting up mark group information and the mapping relations of incidence relation Example is applied, due to the message processed through standard encryption and decryption method, can obtain identifying group information and SP information, SA information and road By the corresponding relation of information, it is possible to stored SA information and routing iinformation according to these corresponding relations, and believe with mark group Breath sets up mapping relations, so next time when the message with the mark group information arrives, can be with the corresponding SA of extracting directly Information and routing iinformation are directly processed, without carrying out standard encryption and decryption flow process again.
Preferably, the method also includes that the incidence relation to setting up is provided with the update cycle, when each cycle starts Delete all described incidence relation of upper cycle foundation.
In embodiments of the present invention, it is to be understood that during storage, can be by SA information and routing iinformation binding storage shape Into incidence relation, incidence relation is allowed to set up mapping relations with mark group information;
Equally, during storage, SA information and routing iinformation can respectively be stored, sets up mapping respectively at mark group information and close System.It is directly to search the SA information and routing iinformation of storage by mark group information, slightly when actually used to be due to the present invention The lookup of SP information and the process by SP information searching SA information are crossed, so the embodiment of the present invention is for the pass for ensureing to set up The correctness of connection relation and mapping relations, so set a update cycle, alternatively referred to as ageing time so ensures each The incidence relation of foundation is all only using a period of time, it is to avoid because the variation of SA information or routing iinformation causes the association of former foundation Message encryption and decryption flow process mistake caused by relation mistake, it is ensured that incidence relation upgrades in time.
Correspondence said method, present invention also offers a kind of quick encryption and decryption gateway, as shown in Fig. 2 the gateway includes:
Receiving port 1, for receiving message;
Processor 2, for whether being stored with and the mark to memory look-up according to the mark group information of the message Group information has the security association SA information and routing iinformation of mapping relations;
If it is, performing quick encryption process, directly the message is carried out according to the SA information for finding Encryption and decryption;
If it is not, then performing standard encryption and decryption process;
Memory 3, for storage mark group information, security association SA information and routing iinformation;
Sending port 4, the message for encryption and decryption to be completed is transmitted according to the routing iinformation.
In the above embodiment of the present invention, there is provided a kind of gateway that can realize quick encryption and decryption, compared to traditional net Close, store multiple SA information and routing iinformation inside the processor in the embodiment of the present invention in advance, and from different mark groups Information establishes mapping relations, so when message is received, can judge whether to hold according to the mark group information of message The quick encryption process of row, qualified message is rapidly completed encryption and decryption, to ineligible standard encryption and decryption is performed again Process.
On the basis of the above embodiment of the present invention, usually, the Standard Encryption process that the processor is carried out includes:
The security strategy SP information of message according to the source IP information and purpose IP information searching of the message;
Judged whether to need to be encrypted the message according to the SP information;
If it is, according to the corresponding SA information of the SP information searchings;
The message is encrypted according to the SA information;
Routing table is searched according to purpose IP included in the message and obtains routing iinformation;
The message that encryption is completed is sent according to the routing iinformation.
On the basis of the above embodiment of the present invention, usually, the standard decrypting process that the processor is carried out includes:
The SA information of the message is searched according to the SPI of message marks and protocol information;
Judged whether to need to be decrypted the message according to the SA information searchings SP information;
If it is, being decrypted to the message according to the SA information;
Routing table is searched according to purpose IP included in the message and obtains routing iinformation;
The message that decryption is completed is sent according to the routing iinformation.
On the basis of the above embodiment of the present invention, it is preferable that the processor is in the Standard Encryption process or decryption After the completion of process, the SA information for generating and the routing iinformation are set up into incidence relation, and built with the mark group information Found corresponding mapping relations.
On the basis of the above embodiment of the present invention, usually, the gateway also includes timer, for periodically notice Processor deletes all described incidence relation of cycle foundation when each cycle starts.
For the clearer course of work for understanding the quick encryption and decryption gateway that the present invention is provided, as shown in figure 3, now with Gateway once to the ciphering process of message as a example by, be explained in detail:
S201, the receiving port of gateway receives message, and the message for needing encryption is the discovery that according to inspection heading;
S202, processor is searched in the mapping relations for having stored according to the mark group information of the message and whether there is in institute State mark group information and there is corresponding incidence relation;
S203, if it is, processor is then according to the SA information and routing iinformation in the incidence relation for finding to institute State message and be encrypted process, and sent the message for completing is encrypted according to routing iinformation by sending port;
S204, if not, the peace of processor message according to the source IP information and purpose IP information searching of the message Full strategy SP information;
S205, judges whether to need to be encrypted the message according to the SP information;
S206, if it is, according to the corresponding SA information of the SP information searchings;
S207, if not, abandoning the message according to the instruction of the SP information or being transmitted to other gateway or network element;
S208, is encrypted according to the SA information to the message;
S209, searches routing table and obtains routing iinformation according to purpose IP included in the message;
S210, according to the routing iinformation message that encryption is completed is sent;
Above-mentioned routing iinformation and SA information are set up incidence relation by S211, processor, and are formed with the mark group information Mapping relations.
By above-described embodiment, detailed describes ciphering process of the secondary gateway to message, can be with by above-mentioned flow process Find out, if walking quick encryption flow, the flow process just has finished in S203, walks Standard Encryption requirements of process S205- At least 4 steps of S209, hence it is evident that process is loaded down with trivial details, in the case where server needs a large amount of process messages, it is however very well possible to can cause Systemic breakdown, the adverse consequences such as message time delay is long so the present invention is by way of Optimizing Flow, allows the inventive method and net Close the operating efficiency of raising server that can be larger in real work.
Those skilled in the art are it should be appreciated that embodiments of the invention can be provided as method, system or computer program Product.Therefore, the present invention can be using complete hardware embodiment, complete software embodiment or with reference to the reality in terms of software and hardware Apply the form of example.And, the present invention can be adopted and wherein include the computer of computer usable program code at one or more Usable storage medium(Including but not limited to magnetic disc store and optical memory etc.)The shape of the computer program of upper enforcement Formula.
The present invention is with reference to method according to embodiments of the present invention, equipment(System)And the flow process of computer program Figure and/or block diagram are describing.It should be understood that can be by computer program instructions flowchart and/or each stream in block diagram The combination of journey and/or square frame and flow chart and/or the flow process in block diagram and/or square frame.These computer programs can be provided The processor of all-purpose computer, special-purpose computer, Embedded Processor or other programmable data processing devices is instructed to produce A raw machine so that produced for reality by the instruction of computer or the computing device of other programmable data processing devices The device of the function of specifying in present one flow process of flow chart or one square frame of multiple flow processs and/or block diagram or multiple square frames.
These computer program instructions may be alternatively stored in can guide computer or other programmable data processing devices with spy In determining the computer-readable memory that mode works so that the instruction being stored in the computer-readable memory is produced to be included referring to Make the manufacture of device, the command device realize in one flow process of flow chart or one square frame of multiple flow processs and/or block diagram or The function of specifying in multiple square frames.
These computer program instructions also can be loaded in computer or other programmable data processing devices so that in meter Series of operation steps is performed on calculation machine or other programmable devices to produce computer implemented process, so as in computer or The instruction performed on other programmable devices is provided for realizing in one flow process of flow chart or multiple flow processs and/or block diagram one The step of function of specifying in individual square frame or multiple square frames.
Obviously, those skilled in the art can carry out the essence of various changes and modification without deviating from the present invention to the present invention God and scope.So, if these modifications of the present invention and modification belong to the scope of the claims in the present invention and its equivalent technologies Within, then the present invention is also intended to comprising these changes and modification.

Claims (8)

1. a kind of quick encipher-decipher method, it is characterised in that the method includes:
When message is received, searching whether to be stored with according to the mark group information of the message have with the mark group information The security association SA information and routing iinformation of mapping relations;
If it is, performing quick encryption process, directly the message is carried out according to the SA information for finding plus solution It is close, and be transmitted according to the routing iinformation;
If it is not, then performing standard encryption and decryption process;
Wherein, the Standard Encryption process includes:
The security strategy SP information of message according to the source IP information and purpose IP information searching of the message;
Judged whether to need to be encrypted the message according to the SP information;
If it is, according to the corresponding SA information of the SP information searchings;
The message is encrypted according to the SA information;
Routing table is searched according to purpose IP included in the message and obtains routing iinformation;
The message that encryption is completed is sent according to the routing iinformation;
Wherein, after the completion of the Standard Encryption process or decrypting process, the method also includes:
The SA information for generating and the routing iinformation are set up into incidence relation, and sets up corresponding with the mark group information Mapping relations.
2. the method for claim 1, it is characterised in that the mark group information of the message includes source IP information, purpose IP information, source port information, destination interface information, protocol information and security strategy index SPI marks.
3. method as claimed in claim 2, it is characterised in that the standard decrypting process includes:
The SA information of the message is searched according to the SPI of message marks and protocol information;
Judged whether to need to be decrypted the message according to the SA information searchings SP information;
If it is, being decrypted to the message according to the SA information;
Routing table is searched according to purpose IP included in the message and obtains routing iinformation;
The message that decryption is completed is sent according to the routing iinformation.
4. the method for claim 1, it is characterised in that the method also includes that the incidence relation to setting up is provided with Update cycle, all described incidence relation that a cycle of deleting when each cycle starts sets up.
5. a kind of quick encryption and decryption gateway, it is characterised in that the gateway includes:
Receiving port, for receiving message;
Processor, for whether being stored with and the mark group information to memory look-up according to the mark group information of the message Security association SA information with mapping relations and routing iinformation;
If it is, performing quick encryption process, directly the message is carried out according to the SA information for finding plus solution It is close;
If it is not, then performing standard encryption and decryption process;
Memory, for storage mark group information, security association SA information and routing iinformation;
Sending port, the message for encryption and decryption to be completed is transmitted according to the routing iinformation;
Wherein, the Standard Encryption process that the processor is carried out includes:
The security strategy SP information of message according to the source IP information and purpose IP information searching of the message;
Judged whether to need to be encrypted the message according to the SP information;
If it is, according to the corresponding SA information of the SP information searchings;
The message is encrypted according to the SA information;
Routing table is searched according to purpose IP included in the message and obtains routing iinformation;
The message that encryption is completed is sent according to the routing iinformation;
Wherein, the processor is after the completion of the Standard Encryption process or decrypting process, by the SA information for generating and institute State routing iinformation and set up incidence relation, and corresponding mapping relations are set up with the mark group information.
6. gateway as claimed in claim 5, it is characterised in that the mark group information of the message includes source IP information, purpose IP information, source port information, destination interface information, protocol information and security strategy index SPI marks.
7. gateway as claimed in claim 6, it is characterised in that the standard decrypting process that the processor is carried out includes:
The SA information of the message is searched according to the SPI of message marks and protocol information;
Judged whether to need to be decrypted the message according to the SA information searchings SP information;
If it is, being decrypted to the message according to the SA information;
Routing table is searched according to purpose IP included in the message and obtains routing iinformation;
The message that decryption is completed is sent according to the routing iinformation.
8. gateway as claimed in claim 5, it is characterised in that the gateway also includes timer, at periodic notice Reason device deletes all described incidence relation of cycle foundation when each cycle starts.
CN201410007586.4A 2014-01-07 2014-01-07 Fast encryption and decryption method and gateway Active CN103780605B (en)

Priority Applications (1)

Application Number Priority Date Filing Date Title
CN201410007586.4A CN103780605B (en) 2014-01-07 2014-01-07 Fast encryption and decryption method and gateway

Applications Claiming Priority (1)

Application Number Priority Date Filing Date Title
CN201410007586.4A CN103780605B (en) 2014-01-07 2014-01-07 Fast encryption and decryption method and gateway

Publications (2)

Publication Number Publication Date
CN103780605A CN103780605A (en) 2014-05-07
CN103780605B true CN103780605B (en) 2017-05-10

Family

ID=50572435

Family Applications (1)

Application Number Title Priority Date Filing Date
CN201410007586.4A Active CN103780605B (en) 2014-01-07 2014-01-07 Fast encryption and decryption method and gateway

Country Status (1)

Country Link
CN (1) CN103780605B (en)

Families Citing this family (3)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN105991350A (en) * 2015-06-29 2016-10-05 杭州迪普科技有限公司 Business processing method, business processing device and network device
CN111800436B (en) * 2020-07-29 2022-04-08 郑州信大捷安信息技术股份有限公司 IPSec isolation network card equipment and secure communication method
CN112235261B (en) * 2020-09-26 2023-04-07 建信金融科技有限责任公司 Message encryption and decryption method and device, electronic equipment and readable storage medium

Citations (2)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN102882789A (en) * 2012-09-17 2013-01-16 华为技术有限公司 Data message processing method, system and equipment
CN103227742A (en) * 2013-03-26 2013-07-31 汉柏科技有限公司 Method for IPSec (Internet protocol security) tunnel to rapidly process messages

Patent Citations (2)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN102882789A (en) * 2012-09-17 2013-01-16 华为技术有限公司 Data message processing method, system and equipment
CN103227742A (en) * 2013-03-26 2013-07-31 汉柏科技有限公司 Method for IPSec (Internet protocol security) tunnel to rapidly process messages

Also Published As

Publication number Publication date
CN103780605A (en) 2014-05-07

Similar Documents

Publication Publication Date Title
RU2728893C1 (en) Method of implementing safety, device and system
CN107770182B (en) Data storage method of home gateway and home gateway
CN102625995B (en) Galois/counter mode encryption in a wireless network
KR102245688B1 (en) Key generation method, user equipment, apparatus, computer readable storage medium, and communication system
CN107005569A (en) Peer-to-peer services layer certification
CN106533665B (en) Mthods, systems and devices for storing website private key plaintext
RU2683853C1 (en) Method for improving gprs key, sgsn device, user device, hlr / hss and gprs system
CN109041052A (en) A kind of safety communicating method and system based on marking algorithm
CN106899410A (en) A kind of method and device of equipment identities certification
CN109241087A (en) A kind of data processing method and terminal of alliance's chain
CN105516139A (en) Network data transmission method, device and system
CN107579826A (en) A kind of method for network authorization, transit node and related system
CN103096308A (en) Method for generating group key and an associated device
EP2475194A1 (en) Service access method, system and device based on wlan access authentication
CN107864129B (en) Method and device for ensuring network data security
JP2020500374A5 (en)
CN103780605B (en) Fast encryption and decryption method and gateway
WO2019076000A1 (en) Method and device for identifying encrypted data stream, storage medium, and system
CN105848145A (en) WIFI intelligent configuration method and device
CN106341815A (en) Wireless connection method, terminal and AP
EP3328014A1 (en) Data packet transmission method, apparatus, node device, and system
CN108259157B (en) Identity authentication method and network equipment in IKE negotiation
CN105592030A (en) IP message processing method and device
CN103401751A (en) Method and device for establishing IPSEC (Internet Protocol Security) tunnels
WO2017036107A1 (en) Differentiated network access method for user equipment, base station and computer storage medium

Legal Events

Date Code Title Description
C06 Publication
PB01 Publication
C10 Entry into substantive examination
SE01 Entry into force of request for substantive examination
GR01 Patent grant
GR01 Patent grant
CP01 Change in the name or title of a patent holder

Address after: 510663 No. 10 Shenzhou Road, Science City, Luogang District, Guangzhou City, Guangdong Province

Patentee after: Jingxin Network System Co.,Ltd.

Address before: 510663 No. 10 Shenzhou Road, Science City, Luogang District, Guangzhou City, Guangdong Province

Patentee before: Comba Telecom System (China) Ltd.

CP01 Change in the name or title of a patent holder